VentureBeat: Twitter attacks intensify ten-fold; apps struggle to stay up
-
olive karlsson · 4 months agoThe Russian PMC Alfa-Tsentr ( http://alf a-tsentr.r u ) is responsible for coordinating both the current spam and July botnet attacks. At least on the first spate of attacks, they likely worked on behalf of the KFA (North Korea). The bulk of yesterday and today’s incoming connections (spam attack) terminating within our secure clusters originated from IPs in Russia and China. During the first attack there were several bounced undeliverable messages from the Russian company which referenced both the KFA and the North Korean foreign ministry. I looked up their originating IP addresses and they turned out to belong to a Chinese host that is used by several North Korean sites including the KCNA (Korean Central news Agency). I know this because I am a sysadmin (basically an oncall tech) at a large US data center.